Description
A crafted request uri-path can cause mod_proxy to forward the request to an origin server choosen by the remote user. This issue affects Apache HTTP Server 2.4.48 and earlier.
Remediation
References
Related Vulnerabilities
osCommerce Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2018-18572)
Oracle Application Server CVE-2007-5526 Vulnerability (CVE-2007-5526)
Oracle JRE CVE-2013-2430 Vulnerability (CVE-2013-2430)
WordPress Plugin AffiliateWP SQL Injection (1.5.6)
WordPress Plugin Coming Soon/Maintenance mode Ready! Cross-Site Request Forgery (0.5.0)